Cross-Site Scripting Flaw in IBM WebSphere Application Server
CVE-2024-45087
4.8MEDIUM
What is CVE-2024-45087?
IBM WebSphere Application Server versions 8.5 and 9.0 are susceptible to a cross-site scripting vulnerability, which enables an attacker with privileged user access to inject and execute arbitrary JavaScript code in the web interface. This flaw can manipulate the intended functionality of the application, increasing the risk of credential disclosure during authenticated sessions, thereby compromising the security of the affected environment.